We provide AI data classification and governance in sovereign control for sensitive communications in the regulated industries.

Internet
PRODUCT RELEASE: Réunion 3.7.11 on iOS. - Various updates for the next server release - Lay out three Pulse attachments like the web client - Show Vivid call buttons only to users granted Vivid - Clear Pulse notifications read on another device - Keep Cancel and Done visible while searching room members - Show the live server version on the Server screen - Pulse: return the composer to the bottom once the keyboard is hidden - Pulse: show a video poster before the file is downloaded - Pulse: pin chats and rooms, shared with the web client - DataRoom - Module tab items
33
PRODUCT RELEASE: Reunion Web 3.1.112 Pulse - New: Pulse now caches your rooms and messages so they load faster. It is on by default for testing. You can turn it off in Settings > Experimental > Pulse Cache. New: Videos now get a preview thumbnail. When you upload a video, a thumbnail is created and shown as its preview. This works only for new videos uploaded from the web for now, and is coming to iOS and Android. New: Pinned rooms are now saved to the server. Improved: A new room is selected automatically after you create it. Improved: Group creation is easier to use. Improved: Attachments are shown in a new way. You can now right-click an image to download it. Fixed: Large attachments now upload correctly. Fixed: Downloaded attachments keep their original filenames instead of being renamed. EasyCrypt - New: Press Cmd/Ctrl + Enter to send a message. Fixed: Pressing Tab in the subject field now moves to the message body. Fixed: Scrolling now works on long messages. Fixed: The message reply icon is now correct. Data Rooms (Preview) New: An early preview of the Data Rooms module. Turn it on in Settings > Experimental > Data Rooms. General
1
56
Most compliance failures are classification failures in disguise. Access control, DLP, encryption, and audit logs only work if the system knows the sensitivity of the data it’s looking at. When a regulated file leaves as a normal attachment, you lose the audit trail, the jurisdiction, and the ability to prove control. Regulators increasingly treat incomplete classification as systemic non-compliance, not a documentation gap. Labeling is the quiet prerequisite. Get it wrong and the expensive controls become theater.
3
53
「ひと目でわかる Microsoft Purview」のDLPパートを執筆された森下さんが10/24にご登壇されます!DLP活用を検討されている方はぜひご参加ください🚀
📣今月は24日(土)お昼の開催です! 「ひと目でわかるMicrosoft Purview」のDLP関連の章を書かれた森下さんに、DLP設定後の気になるポイント🔍をお話いただきます! ゆるっとPurview勉強会 #5 purview.connpass.com/event/4… #ゆるPurview
1
1
7
539
DLP after the policy is live still misses the attachment that was forwarded before the label existed; classification has to travel with the file, not only with the tenant rule.
25
Copilot Cowork handles new requests mid-run. Add meeting scheduling or an email update partway through and it integrates them into the active plan. Check it out. youtu.be/4vkPv9lX64k Access Anthropic and OpenAI models directly from Microsoft 365 Copilot. Generate briefing documents, presentations, and Excel files from a single prompt with Copilot Cowork, pulling from your emails, calendar, and SharePoint through Work IQ — and fold in new tasks mid-run without stopping. Using Copilot Cowork, you can use the same platform that powers Claude Cowork. It’s designed for long-running, multi-step task automation. #MultiModelCopilot #Microsoft365Copilot #AIModels #GenerativeAI #ArtificialIntelligence
2
1
7
2,221
A cowork run that folds an email update into the plan also folds whatever attachment was on that thread, unless classification blocked that class before the agent could read it.
7
政府に守れっていうのかっていう人いるけど、的外れだよ 漏洩や悪用を改善させるため、もしくは国民が安心して生活できるようにするために、政府としてどのような法整備ができるかを含めて政府として何をするのかとセットでないといけない 個人情報保護法を改悪させた上でこれをいうのは論外なの
「自分の情報は自分で守って」 不正アクセス頻発で古川デジタル相 jiji.com/jc/article?k=202610… #時事通信 #ニュース #時事ドットコム
1
47
108
917
A statute can permit broader sharing and still leave the attachment unclassified; the integrity problem is which sensitive set was allowed to leave Japanese control, not only who was told to be careful.
10
Let’s say you’re working in Visual Studio Code on a healthcare app, and you select a few lines of code to debug a query—a routine moment in your day. That snippet might include connection strings, test data with real patient info, and part of your schema. You ask Copilot to help and approve an MCP tool that connects to a remote server—and all of it gets sent to external servers. That’s not just risky. It could be a compliance violation under HIPAA, SOX, or PCI-DSS, depending on what gets transmitted. From my @OReillyMedia Radar article, “MCP Introduces Deep Integration—and Serious Security Concerns”
2
1
76
The HIPAA problem starts one step earlier than the MCP call: the snippet was never classified, so the patient shaped test data was already eligible to leave the editor.
7
Inventory finds the shadow app after the paste; the missing control is classification at the moment the email or file is copied, before Purview ever sees the prompt.
267
🦔Meta's new AI agent, Muse, asks people to connect their email and bank accounts so it can shop, book travel and pay bills for them. 404 Media reports Meta engineers rushed to patch a flaw two weeks before launch that could have let an ordinary Muse user reach into Meta's internal databases, and some senior engineers still expect a major breach. My Take I wouldn't link a bank account to any AI agent right now, Meta's or anybody else's. Muse launched in September and this is at least its third security story. Two developers got it to hand over its own file system, and The Information reported a separate bug that could have exposed a user's emails and files. Meta says the file export wasn't a breach and that it fixed the bug. Meta expects to spend as much as $145 billion on AI this year, and investors want to see it pay off. An agent with your card on file makes money every time it books a flight, so I understand the hurry. But every AI model makes mistakes you can't predict, and anyone who slips the right instructions into an email or webpage can talk it into things. Put that together with access to your checking account and one bad day gets expensive fast. Muse got about 2.8 million downloads in its first two weeks. If you already connected your bank, I'd reconsider that decision... Hedgie🤗
52
118
413
21,848
Connecting mail is the sharper risk than the card: an agent that can read the inbox can also read the attachment that was never meant to leave the books and records boundary.
5
Adequacy is a transfer label, not a control on the chart or referral that already left as an attachment; if Brussels is asking the question, providers still need a class rule for what may cross and what must stay.
34
今年4月、国会で「Mythos級の攻撃能力を持つモデルが拡散するまで早ければ数ヶ月しかない」と申し上げておりました。 実際、8月末に公開されたGLM-5.3の能力はほぼMythos級のようで、実際に発言が実現してしまった形になります。 データの漏洩事故も相次いでおり、対応を急ぐ必要があります
本日の総務委員会で、Claude Mythos等サイバー攻撃能力の高いモデルの登場に伴い、喫緊の対応が必要ではないかと課題提起をいたしました。 チームみらいはMythosの件について、発表直後から繰り返し、様々な委員会にて課題提起をしております。当初4/10段階ではまだ「現在議論を深めている」(外務委・参考人)という回答だったものの、徐々に温度感も上がり、本日は総務大臣より「喫緊の課題だと認識」との答弁がありました。 AIの開発競争は熾烈で、Anthropic社以外にもこのレベルのモデルを開発する会社は今後多く現れると思います。攻撃能力が拡散するまで下手すると数ヶ月〜1年程度しか猶予がないかもしれません。こちら非常に重要かつスピードが求められる論点ですので、今後も引き続き取り組みます (参考)チームみらいのMythosの課題提起に対する政府答弁推移 4/10 政府参考人(国家サイバー統括室)「議論を深めている」 4/15 官房長官「最新の技術動向にも注視」 4/15 AI担当大臣「危機感は非常に共有」 4/17 総理「適時に必要な対応を」 4/21 総務大臣「喫緊の課題だと認識」← New
392
1,587
9,154
2,492,510
Model class is only half the leak path: the attachments and prompts already sitting in mail and chat are what get copied when an incident lands, so classification has to happen before that send.
24
Sam Altman is happy to accept some bad things happening. As long as they happen to you.
POLITICO
13
40
290
11,719
Benefits and risks are not evenly distributed, and it is legitimate to ask whether decision-makers are insulated from consequences that fall on users, workers, or the public.
20
Exercise and remission from cancer: A randomized trial found 37% improved survival, 28% disease-free survival. But little is being done to incorporate in practice except @UPMC 1st health system covering "exercise oncology" program. gift link, by @AgrawalNina nytimes.com/2026/10/06/well/…
28
226
765
69,444
Interesting.
192
AI and Challenges in Workforce Development Train the humans and machines together. philvenables.com/post/ai-and…
2
1
4
577
Humans need progressive responsibility, feedback, and the chance to build judgment; models need data, evaluation, and constraint.
5
Open-source implementation of the entire Adobe Suite, reverse engineered by AI. Closed source is dead.
This is the doom I predicted a few days ago, coming for Photoshop. A clean-room open-source reimplementation. No prizes for guessing that they decompiled Photoshop to source code, processed that to some kind of non-code specification language, then fed the spec to an LLM with an instruction to generate Rust. Adobe just got nuked. And closed source is dead, dead, dead. github.com/storytold/photocr…
22
61
762
51,306
AI-assisted reverse engineering and reimplementation are getting good enough to threaten specific closed products, and an open path into Adobe-format workflows is a real shift in leverage. That part is hard to dismiss.
62
Let me spell out what this means for privacy: Surveillance is hidden all through opaque software. You are never meant to find it. But AI can decompile, analyze, & expose exactly what your apps are doing. The age of "trust us" software is ending. Privacy revolution incoming.
Open-source implementation of the entire Adobe Suite, reverse engineered by AI. Closed source is dead.
58
297
1,984
33,473
AI-assisted reverse engineering clearly lowers the cost of inspecting closed binaries, and high-profile rebuilds or analyses will keep embarrassing vendors who bury tracking in opaque clients. That shifts leverage toward people who want to verify behavior rather than take “trust us” on faith.
47